URLhaus Database

You are currently viewing the URLhaus database entry for http://www.giztasarim.com/wp-includes/4242145534/iJTD-ed97I_IZqxHwbxR-YJ/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:167343
URL: http://www.giztasarim.com/wp-includes/4242145534/iJTD-ed97I_IZqxHwbxR-YJ/
URL Status:Offline
Host: www.giztasarim.com
Date added:2019-03-27 19:35:11 UTC
Last online:2019-04-10 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-03-27 19:36:07 UTC to abuse{at}hetzner[dot]de)
Takedown time:13 days, 4 hours, 28 minutes Bad (down since 2019-04-10 00:04:53 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-03-292019_03_PAY5700503597077522___5329868692378.docdoc 6cbd36967a0c7460d3623d1346afd511145f19c97fdb7b3c6b8770ae2495b07aVirustotal results 20.69% Heodo
2019-03-292019_03_INSTR296971763612576___555401437840141.docdoc c76605838dcf51882c817190fb690280fa6a777d100f60e55d67047250cb516cVirustotal results 21.67% Heodo
2019-03-292019_03_KQTB921273075___8824993819084592498.docdoc 7fdd6d3f01b22f9877710c4a8d2af9396b12b1e7164cfca4027e0c4a9e309f71Virustotal results 21.05% Heodo
2019-03-292019_03_INSTR20664406250___41343258721660.docdoc 7dd65e9505db522b5bf00f779b47d5dc7fcd751c989dfd6b8c5c55c684b37d03Virustotal results 21.05% Heodo
2019-03-292019_03_INSTR749445916793___34271518193511.docdoc 9394fa9d8a0b1a890de21f503494d53874b2aeabbd76e722811df0dfff1b7d32Virustotal results 21.67% Heodo
2019-03-292019_03_US184350849783671212___662934741516.docdoc 899a3ea6f97efc9329fe0d39a0f633baba2982d5cb95e7a77334710fc9962df9Virustotal results 19.64% Heodo
2019-03-292019_03_PAY53554077433346953385___775084756459.docdoc 99abaec7f114aa7fad256b4264ba93b30392a5dae4a52af6b6e3b711721667d3n/a Heodo
2019-03-292019_03_US2689557382___17907375850951485.docdoc afe49f819653f5e93ae6a9285dffdc5b2eb3d333b081886ba956785f07fa670bVirustotal results 20.34% Heodo
2019-03-292019_03_YIAS606214661642928___484176468181321169.docdoc 59481a8827fc31c267669c6e0c12e4031797b696122d9c41f35fdda03df8b7bdVirustotal results 20.69% Heodo
2019-03-292019_03_US8942786128811053___920226965008096194.docdoc e90b47c43f4a2fddbd0252051c34fccb92a00d56cb210cc60ad0e4046a15f7fdVirustotal results 21.05% Heodo
2019-03-292019_03_26748963649___968688194.docdoc ae231500167fb41514dd4f549267e6b142d9365ff87bf2195f88e64c541c10e1Virustotal results 21.05% Heodo
2019-03-292019_03_PAY6410296870365___12641786777936.docdoc bf7ad3387e27eb736fb50a6654d3ddf6cdb6eede287d0fc92e9c35f69a419c0aVirustotal results 20.69% Heodo
2019-03-292019_03_US31655855193605271168___0593475119046799830.docdoc fe57b30c4a602bf1135d1538092dd8af9e9a69d1d8ebb116bb482be9c159e53cVirustotal results 21.05% Heodo
2019-03-292019_03_PAY042440162608___20795648066774.docdoc 9a8d362fc959cf40b56da65e72e1dd1a8a891fe93215a2f97fc8b4c51fc62ec1n/a Heodo
2019-03-292019_03___US___ZDVX2298405570796995___95070304657512946746.zipzip c16e1f207031bac8581d7548ee1b7c869a51014cb8dbc42c80b90f3c2877dde8n/a 
2019-03-292019_03___US___GY37816539555280___722386346050922.zipzip ee93e8bd1f6d2f204b1c87ad799ff2fc7dc515cb6bd7d14bc6f49f6d6d0a33c7n/a 
2019-03-292019_03___US___PAY269655660074320928___10648065227940632052.zipzip 5a06b8ed62411958903730f9ac08ae5cf8818813c1d7060515755e6c68fb5164n/a 
2019-03-292019_03___US___US64597500129541___902017904.zipzip 0cd639a010786a6b39cc516809117931de37b7809295bd3c2a2ff1d5d961355an/a 
2019-03-292019_03___US___PAY74755922873114680752___0439144694987133.zipzip a5e18ad9dcf662a43761f8afd7c37a5308329cf758d40720d3eb8a995377f73fn/a 
2019-03-292019_03___US___00228580305016413___589935584.zipzip 7897f3ab81076938cdb5f5039d26b36e4d6bd332799e1a6c9631a2755655b556n/a 
2019-03-292019_03___US___WD1629514131255227412___36055445453.zipzip ab9a2b5fe7f9be57353d0634c93fcd8942e0e41669074a998c5fb75c736274e5n/a 
2019-03-292019_03___US___US7632152280720___3224244944736.zipzip 677485a90b951c23cec02d86064b683de46f03bec59944c1431d64c135b74fdcn/a 
2019-03-292019_03___US___INSTR341979213___51491449394136259.zipzip 5cf594b736c4ba226cab789b585eeea2023dd584cbadb4eebc125a91e4994ecdn/a 
2019-03-292019_03___US___ACC397610512460802558___207891698292602.zipzip d1fcbbf7a9535cf1c3612f02935a65a6a19847b16c1ea5b3c8e702fcd3ba3570n/a 
2019-03-292019_03___US___599416062862___200156761485192602.zipzip a5814fcff92888d01abc038f53ec6a79b2e597f7edf6ded163acdd4357802dd1n/a 
2019-03-292019_03___US___US661217766374___6736417023314174251.zipzip 7918110c50214b3026c9b2b213fa21138332317b670f4496f99e7c95893d07d7n/a 
2019-03-292019_03___US___ACC19553139493773759___51946805008534336069.zipzip b073de79cb8dc1a3266c78774edbfc8fe5ba01ce63594c71c96f31432302da4an/a 
2019-03-292019_03___US___U07967072797___9340044328.zipzip 4bb3e0d126779647d6fcf95ea88809f82464e0ca01391da004097459ad4c0b74n/a 
2019-03-292019_03___US___INSTR663470502___4626095408032681.zipzip 379d6b17390f7e9c84a931e204caf34f8614f580820ed5b7eb47a3a093b1ae90n/a 
2019-03-292019_03___US___ACC2694380843925109___12172298330668.zipzip 296b89c4d7da7557e7c41d4039dd1938b9aac28174623786c990ce47078a70ffn/a 
2019-03-292019_03___US___85872114783477686___59033177366779641096.zipzip 7f0a217ad2b750873e63247b450e9d5f3a2af6fbee4fb5f7ca75699da305ec5en/a 
2019-03-292019_03___US___ACC821729386332___6129097719990397.zipzip 7507eb768165e3654b37fb1bd176e1d7fae81f30c2993637aa9d128d4e2555f6n/a 
2019-03-292019_03___US___ZYL0707770561352071___1184597255046154.zipzip a360b0c51a86bc71b517b8bc44a763e40b2c4903c41b1781fac3a9d25912fddcn/a 
2019-03-292019_03___US___83324456923601___130717645.zipzip ef5586475b323c695b49d8cb5ae5933e14cc4815929d2322d5177a1965f95110n/a 
2019-03-292019_03___US___5284615679039553___85178798220.zipzip 7f693048c131383d66b24516e36f0d80319bb98d5d7bff5ac94e0737929f0ca8n/a 
2019-03-292019_03___US___83739294935106298263___090942522.zipzip 75d0ac2e6a421f83e4cd10ebb888e9b80a852cd29409f01fb3aa8742b353bff3n/a 
2019-03-292019_03___US___US12618190700838___182541516379274.zipzip 669c68607a67bdad4580d886d5321e9b7450c343a493fcf7cf73356886e3ecb4n/a 
2019-03-282019_03___US___935224740387345___34721786103549.zipzip 7016961b8672f99125df69693ee8e96c3746a931a5dea4b556902ae7e659cf25n/a 
2019-03-282019_03___US___PAY5917910660479___324011181242168188.zipzip e5a0aa734be52dd39009ba8d739033dd31cc9c3cd1fa746b292b8fb75fd69115n/a 
2019-03-282019_03___US___US45054195122437334___62489802459955922.zipzip d66235e1d594646936d9a3a2963191713753efc2aad651c6412a8d1790ecff52n/a 
2019-03-282019_03___US___PAY5420843086467982___497247694594.docdoc e61cd73fd942c6d8d51c67996e8a694be145fd9a437f3bf641239e6b666a0b59Virustotal results 20.00% Heodo
2019-03-282019_03___US___INSTR5484150984572___661585300784742.docdoc 87698079ef2b9a3ce0ff2c16e9039e847a81bae4e0793b005c72a443683d28f4Virustotal results 21.43% Heodo
2019-03-282019_03___US___5775888872732877___1131140301274.docdoc f3adf91c3cd1e972bff7f230f24729c6e69737862b88b491720f05a6fda282f4Virustotal results 19.30% Heodo
2019-03-282019_03___US___HIXG51320586373782___044871393719444.docdoc 235617c4c46b0eb57a53bab6974f0e81512bf2be9c487156640919032afcf477Virustotal results 24.14% Heodo
2019-03-282019_03___US___ZCC4510444604___16210932200.docdoc 55272816d957c8d610f15e20aff8e0f30f8ae00e9cdfc521a58e7340c260f589Virustotal results 18.64% Heodo
2019-03-282019_03___US___US35137275831369853163___31290451226415975575.docdoc 17139a0b1e99a41443a231820173404850d3ee4093bcb4011cc71f790d1f9f09Virustotal results 18.97% Heodo
2019-03-282019_03___US___ACC80095207367986823795___7112014723231940628.docdoc 180da596041ae834c159756ad0f84c97f0ed63cd08abc7cdafad1d1bc83caf7eVirustotal results 20.37% Heodo
2019-03-282019_03___US___ACC5970190420905331933___56220559448523.docdoc 24ecfe71f85e9c8d734e8438171c62e5982fa9962e28600f2dea828b91d510b8Virustotal results 19.64% Heodo
2019-03-282019_03___US___PAY484192016622919___0460269651322.docdoc cd2d3b2f7eec90c2195bdbee984d67ce99230a76066a6a619a5895c06ab89db4Virustotal results 19.67% Heodo
2019-03-282019_03___US___ACC10412584336___2175831606122.docdoc e9b57e2b29288ee0c219029141219b9064d8021aecf255cc9ea41198486daa55Virustotal results 19.67% Heodo
2019-03-282019_03___US___ACC098137542870895746___6966214434791.docdoc ad5faaa82a6caef20722faf6fd1efd2d441b0e8362210d6e57af6ed666b62769Virustotal results 21.43% Heodo
2019-03-282019_03___US___ZUHSC2621932363908209697___64338065980236138.docdoc 7d805fd6032eb14134efe16f128638bb6ea296911ad55fac6340ace72707f251Virustotal results 20.00% Heodo
2019-03-282019_03___US___0702642104407592___94175586765302.docdoc 1da44ccc2eb250ca1283e6b12e92d326169112ae88c9b1b9800fa1868257628eVirustotal results 20.00% Heodo
2019-03-282019_03___US___PAY75122816047879207___1962943389928423.docdoc 084d0997def7560fa87cb31751f21177cc3d0efc904a4901472b2cdb5225ee5cVirustotal results 20.34% Heodo
2019-03-282019_03___US___INSTR164418203603___2639280775628467.zipzip 9d6c278be4667ead48035e89e70094edb729bfc80b5b50366dc513d29270581fn/a 
2019-03-282019_03___US___ACC6964601109257801___7031139027.zipzip 5cd54c0f3131dc3a599dd8761377f760854f2d9efc3a80561588c07377843581n/a 
2019-03-282019_03___US___598232003___675151634.zipzip f459106ad68d85846cb23ef3ebe3f25626e5d7dcb3bac7ff15d1678a548e9ab4n/a 
2019-03-282019_03___US___US816413662070871411___751583993.zipzip aa74cec25d28273ffe10a9447e53bd2e0cd090658ba7a8c9fbcaccb3f974dfc9n/a 
2019-03-282019_03___US___ACC04278991210___518425348466537293.docdoc 0b2865d4fa1698a720768ce6ca2d9042bb81d71b0518a063a94b302924ef5903Virustotal results 20.69% Heodo
2019-03-282019_03___US___INSTR0452690874989___27607751725300052600.docdoc 317a746f7feff930bd6946c5d741d513303a03d4ab17d5bff017339a23a8014bVirustotal results 19.30% Heodo
2019-03-282019_03___US___I7439721395388452___5108716640226950.docdoc 649a24597f3c8200c7d5eec932d168ec360aab882b9d9fb5f2f512ebaa433f38n/a Heodo
2019-03-282019_03___US___US775851359___438112388.docdoc 9a86d9a82a87e2510fe2814eb2afa2c3af8c73077ebbaa6b785f23148e4901a4n/a Heodo
2019-03-282019_03___US___US350997230985898336___92870798034435598938.docdoc 35f786ff20a4822786b18f0012308fd5e2dbaba89a1928a6dfaf8d4b4a8f8e5fn/a Heodo
2019-03-282019_03___US___PAY225980971___890080365942933963.docdoc bb2dc219be6d801ddb792e8223c5b1a466c3479fd45fab43d5c93c4aa62aa486Virustotal results 19.30% Heodo
2019-03-282019_03___US___INSTR23608817682523509540___41549830242866453.docdoc f822776a08de8884b8b3ec11b7c01e4a8657eec8243b062d5ec485e68a5d8c94n/a Heodo
2019-03-282019_03___US___83581681709207282___38467539263.docdoc f8209146b3ba58be520594e795a4207eb5e76282b9f9b4722e6dc3d18fc1d4c7Virustotal results 18.97% Heodo
2019-03-282019_03___US___84336702017239869807___565989751625308801.docdoc 6d8d966985206b4f06bad79e5bc13d92f0253ebaf7ec9bd60df7c0cf06589737Virustotal results 18.64% Heodo
2019-03-282019_03___US___ACC7755726448879___422790242038878.docdoc 7bed206561fb6dbbf6dc4240564ab7f9b222836b67b1fea0ac06f5a6dba3f324n/a Heodo
2019-03-282019_03___US___US2554120861082___602285171.docdoc c58164553162deeb496616f9bb7360a5769fc757d6001e6bab1eff480adcadfcVirustotal results 19.30% Heodo
2019-03-282019_03___US___US196078885360353287___655037709957.docdoc 275dbd2896f35d2477ea2bca9881bd2fcdbba39dc8d05175d71ea26907fd6f9eVirustotal results 17.24% Heodo
2019-03-282019_03___US___V948548855868___82126092667025941.docdoc acd79fbe38629c06ac53f1332fa50bc6509599309f1dfebdcee6fc5f461ecdf2Virustotal results 19.30% Heodo
2019-03-282019_03___US___47617943761___1220402136225794850.docdoc e2cde60cb978cc510404c35e2e306f1e8f4e0ad1d4198da2d15e4a7e10956f8cVirustotal results 18.33% Heodo
2019-03-282019_03___US___PAY76031235457491___929615011083516.zipzip 6f6bb51e643ccf70fb2f0c1e60f8c3eeee6dda8d6ad43e8a3bf6cddc9119dc8fn/a 
2019-03-282019_03___US___QXD56063175531536039___592651279.zipzip ace5c7381d919a0011c91c99392ff4418bc498c6a584c175917b0ab276e0ef56n/a 
2019-03-282019_03___US___JMAF9971004733696992320___791329552746228.zipzip b63fcb8fe8f70b10d5b305ffee8753356aef735872fa28cefe9bebb8befb8832n/a 
2019-03-282019_03___US___US08211963844144554___485916481908689.zipzip a6ba11be2499926b5afa3450ccefa9375beb714632b731f311ba99f575345c48n/a 
2019-03-282019_03___US___US7653713748111886425___20952113761453306959.zipzip 4784ba65c73fffd34a84d5af8a4cd3a54246e3572019994beaae9ec25d42ad15n/a 
2019-03-282019_03___US___75478882831746953204___670106695.zipzip a3c496eac9040e78c0d1602f823b7ef2b213e6bd80850f004b6002967875929fn/a 
2019-03-282019_03___US___INSTR1776442867039512___675394972489755910.zipzip 91f6ea597c3b2157bbf87b563fe48f7f683f6473ab1cb9ae8e0aa784aef84d7bn/a 
2019-03-282019_03___US___ACC201459165196336___60901938648792504234.zipzip 279ad43eb27c0813a8b7499f03528daf3d76970f899acb2dd169ff368e68657cn/a 
2019-03-282019_03___US___WW457119876___472447753016.zipzip 8796caf8ae8d44e3d58c3a498a50b04edc957ae24fddacfca378fc67bcd489d0n/a 
2019-03-282019_03___US___PAY08834276943___017564731790.zipzip 11ef1a7d6e4a620df7126ffbd929724aff910667e5e6b5527925b41ff3dc25d6n/a 
2019-03-282019_03___US___ACC7158184210017___3755890447730.zipzip 46fe54c987ab945e8cb0240827b4bac2de25f4c8dbebc3ff641cf8fa77f7a0a7n/a 
2019-03-282019_03___US___921939705859___359431698.zipzip 57b51445dcf8ef8ff200e18c4171f143a7c30f5de3a544b1cf804ba3828c1ce7n/a 
2019-03-282019_03___US___ACC136341861___532091911728926.zipzip fff6c9558ffbc4c242f8e590fb0ca0679cb4fba23c22371b75e0bc8f67406731n/a 
2019-03-282019_03___US___INSTR808208854___4535962835456.zipzip 3dc54a383b7fab0f23c670588952e403c25b74706268b096e1e9df6a75a813f3n/a 
2019-03-282019_03___US___083759912128___26129538173312857020.zipzip 79ed307f665dcd7ffe8bb5aa2d7ec456b9156f19c5017a7458b49beb29ad6e0dn/a 
2019-03-272019_03___US___INSTR9489991370420101___5704143359180596676.zipzip c9326b2971529de3c03651bef798de8588f0c6e35bfe76598550a8c7dd6c0a3dn/a 
2019-03-272019_03___US___INSTR172581002041966___675578639211901.zipzip 8bab343d37a1e02c356303a5ffe748929be4aa1b645a821c4706c88899285f06n/a 
2019-03-272019_03___US___ACC1338658074___009831744605.zipzip f8e2726c2a35b4c117c43c3aaeabaf982ed8bd8bea32d5b7f4c6e12efe1e74cbn/a 
2019-03-272019_03___US___PAY8859175293___78280014304454436.zipzip af281a3f4dd9aa837eaaa4899da1998533d44fed533b85d19c9fbc9fd93151afn/a 
2019-03-272019_03___US___INSTR13726725589836___4687922693335852901.zipzip e8252b293946e13e529e8856b547d6abbdce771f58c85542c857e5c1fb4b189cn/a 
2019-03-272019_03___US___ACC862335086873803___69299045353633220572.zipzip 259936cac43d52765c7ab9c96127d6eeec7f40ef3dcb00a14cd029f8d72fe8can/a 
2019-03-272019_03___US___INSTR1326004328055519959___503766163591185.zipzip 8d2be31c30a9ac114d351e079ff84178be6b3556a3669429ee5cd46921ccb549Virustotal results 23.73% 
2019-03-272019_03___US___97102452597946176___78652790514156.zipzip 722bf505274552ee82b83cf30b24689df8c893f67e15c3720957331c987e0114n/a 
2019-03-272019_03___US___ACC6039748932___718147961652017304.zipzip a5047f4f312c0c890ce6ca99c9a1a41df146ef69fb032e556affc7fa3a1b366dVirustotal results 23.73% 
2019-03-272019_03___US___US0597374875414141191___0652774493296516.zipzip 2a4d0eff31c4eecd7d785897e87e1a115e0183953d7b62ec1b312e99612c2d7en/a 
2019-03-272019_03___US___0038491038___99350838089.zipzip 37650cb9e61344d42be5922fe20b791edf530a4a07044c58d1ff3dfb21d4d526n/a 
2019-03-272019_03___US___ACC30250980426013___906493693052892101.zipzip 139a6522cbc6a388f580617826e44c8c8b300c18671308c96d6ffa2a67b5d2a4n/a